Date Published: 2023-03-20
QID 378087: Zoom Rooms Information Disclosure Vulnerability (ZSB-23001)
Zoom Rooms is a software-based room system that provides an integrated experience for audio conferencing, wireless screen sharing, and video conferencing.
Zoom Rooms for Windows clients before version 5.13.5 contain an information disclosure vulnerability.
Zoom Rooms for Windows clients before version 5.13.5
QID Detection Logic:
Windows: This authenticated QID detects vulnerable version of Zoom Rooms using registry "HKLM\SOFTWARE\Classes\zoomroom\DefaultIcon" and "HKLM\SOFTWARE\WOW6432Node\Classes\zoomroom\DefaultIcon"
Successful exploitation of this vulnerability may allows a remote attacker to gain access to potentially sensitive information.
CVEs related to QID 378087